CVE-2025-64127

Publication date

2025-11-26 17:50:01

Family

icscert

State

PUBLISHED

Description

An OS command injection vulnerability exists due to insufficient sanitization of user-supplied input. The application accepts parameters that are later incorporated into OS commands without adequate validation. This could allow an unauthenticated attacker to execute arbitrary commands remotely.